Senior AD/ICAM Administrator

Jobtailor

Deutschland

Remote

EUR 120.000 - 150.000

Vollzeit

Vor 4 Tagen
Sei unter den ersten Bewerbenden
Bewerbungsgenerator

Verschicke keinen generischen Lebenslauf — erstelle einen Lebenslauf und ein Anschreiben, die genau auf diese Rolle zugeschnitten sind.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Jobtailor in Germany seeks a senior ICAM architect to drive Zero Trust and identity management modernization across on‑prem and cloud environments. You will lead design, implement, and govern AD, RBAC/PBAC, and cloud migrations while collaborating with Security and Networking teams.

The role emphasizes hands‑on delivery, architectural leadership, and policy enforcement across Azure, Entra ID, and hybrid platforms.

Qualifikationen

  • BS degree and 12+ years of prior relevant experience; additional experience in lieu of degree.
  • 8+ years of hands‑on experience in a lead role
  • Proven experience/proficiency in enterprise‑level Windows Server administration and Directory Services management
  • Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite
  • Understanding of ABAC, RBAC, and PBAC
  • Strong expertise in Azure AD / Entra ID, hybrid identity, and cloud migration projects
  • Deep knowledge of Windows Server operating systems (2016/2019/2022), AD DS, DNS, DHCP, PKI, and certificate services
  • PowerShell scripting proficiency for automation and reporting
  • Demonstrated experience with Digital Identity Management and Identity Governance, Authorization ICAM services, Data Security Architecture and Data Protection Services, CIAM solutioning, MFA solutions, cloud‑first/cloud‑native architectures, infrastructure as code, and IdAM/ICAM services
  • Demonstrated experience supporting large‑scale enterprise applications
  • Strong communication skills via documentation and verbally with senior management
  • US Citizenship
  • Ability to obtain and maintain Public Trust
  • Desirable: AZ-104, AZ-305 or SC-300, and Microsoft Certified: Windows Server Hybrid Administrator Associate certifications
  • Familiarity with Power BI, Azure Landing Zones, Azure Policy, Blueprints, Bicep/Terraform, SAML, OAuth, OpenID Connect, Kerberos, NTLM, Defender for Identity, Sentinel, PAW, DevOps, and Lambda

Aufgaben

  • Deliver modern Identity Access Credential Management (ICAM) solutions and Zero Trust Architectures (ZTA)
  • Provide technical leadership for modernization initiatives
  • Translate business requirements into technical solution alternatives
  • Perform hands‑on implementation and prototyping of identified solutions
  • Conduct IPT project management activities across multiple ICAM service capabilities
  • Manage and prioritize tasks within the team directory services team
  • Design, implement, and manage Active Directory Domain Services, including forest/domain architecture, trusts, replication, and high availability
  • Lead hybrid identity initiatives using Azure AD Connect, Entra ID, and cloud sync technologies
  • Develop ZT and ICAM solutions through COTS integration activities
  • Perform technical triage, requirements decomposition, and solutioning
  • Manage and optimize GPOs, OU structures, and security baselines
  • Implement and maintain identity governance, RBAC, PIM, and Conditional Access policies in Azure
  • Perform AD health monitoring, performance tuning, backup/recovery, and disaster recovery planning
  • Migrate and modernise legacy AD environments to Azure‑native or hybrid solutions
  • Present solution options, advantages, and disadvantages to senior leaders
  • Champion development, documentation, and execution of system policies
  • Influence project/team leaders regarding solution design, processes, and approaches
  • Troubleshoot complex identity and authentication issues across Windows, Azure, and third‑party applications
  • Collaborate with Security, Networking, and Application teams to enforce Zero Trust principles and compliance standards

Kenntnisse

ICAM
Zero Trust Architecture
Azure Active Directory/Entra ID
Windows Server Administration
PowerShell Scripting
Cloud Migration

Ausbildung

MCSE Certification
MCSA Certification
AZ-104
AZ-305
SC-300
Windows Server Hybrid Administrator Associate

Tools

Power BI
Bicep
Terraform
SAML
OAuth
OpenID Connect
Kerberos
NTLM
Defender for Identity
Sentinel

Jobbeschreibung

  • Deliver modern Identity Access Credential Management (ICAM) solutions and Zero Trust Architectures (ZTA)
  • Provide technical leadership for modernization initiatives
  • Translate business requirements into technical solution alternatives
  • Perform hands‑on implementation and prototyping of identified solutions
  • Conduct IPT project management activities across multiple ICAM service capabilities
  • Manage and prioritize tasks within the team directory services team
  • Design, implement, and manage Active Directory Domain Services, including forest/domain architecture, trusts, replication, and high availability
  • Lead hybrid identity initiatives using Azure AD Connect, Entra ID, and cloud sync technologies
  • Develop ZT and ICAM solutions through COTS integration activities
  • Perform technical triage, requirements decomposition, and solutioning
  • Manage and optimize GPOs, OU structures, and security baselines
  • Implement and maintain identity governance, RBAC, PIM, and Conditional Access policies in Azure
  • Perform AD health monitoring, performance tuning, backup/recovery, and disaster recovery planning
  • Migrate and modernise legacy AD environments to Azure‑native or hybrid solutions
  • Present solution options, advantages, and disadvantages to senior leaders
  • Champion development, documentation, and execution of system policies
  • Influence project/team leaders regarding solution design, processes, and approaches
  • Troubleshoot complex identity and authentication issues across Windows, Azure, and third‑party applications
  • Collaborate with Security, Networking, and Application teams to enforce Zero Trust principles and compliance standards
Requirements
  • BS degree and 12+ years of prior relevant experience; additional experience in lieu of degree
  • 8+ years of hands‑on experience in a lead role
  • MCSE or MCSA certification in Windows Server / Directory Services is required
  • Proven experience/proficiency in enterprise-level Windows Server administration and Directory Services management
  • Proven experience with Azure services: Azure Virtual Machines, Azure AD Domain Services, Azure Arc, and Microsoft Entra suite
  • Understanding of Attributes Based Access Control (ABAC), Role-Based Access Control (RBAC), and Policy-Based Access Control (PBAC)
  • Strong expertise in Azure AD / Entra ID, hybrid identity, and cloud migration projects
  • Deep knowledge of Windows Server operating systems (2016/2019/2022), AD DS, DNS, DHCP, PKI, and certificate services
  • PowerShell scripting proficiency for automation and reporting
  • Demonstrated experience with Digital Identity Management and Identity Governance, Authorization ICAM services, Data Security Architecture and Data Protection Services, CIAM solutioning, MFA solutions, cloud‑first/cloud‑native architectures, infrastructure as code, and IdAM/ICAM services
  • Demonstrated experience supporting large‑scale enterprise applications
  • Strong communication skills via documentation and verbally with senior management
  • US Citizenship
  • Ability to obtain and maintain Public Trust
  • Desirable: AZ-104, AZ-305 or SC-300, and Microsoft Certified: Windows Server Hybrid Administrator Associate certifications
  • Familiarity with Power BI, Azure Landing Zones, Azure Policy, Blueprints, Bicep/Terraform, SAML, OAuth, OpenID Connect, Kerberos, NTLM, Defender for Identity, Sentinel, PAW, DevOps, and Lambda
Core Competencies

Demonstrates extensive expertise in Identity Access Credential Management (ICAM) and Zero Trust Architectures (ZTA), with a strong focus on Azure services, Active Directory management, and enterprise‑level Windows Server administration. Proven ability to lead modernization initiatives, implement security policies, and collaborate across teams to enforce compliance standards.

Highest‑signal resume keywords
  • Identity Access Credential Management (ICAM)
  • Zero Trust Architecture (ZTA)
  • Azure Active Directory / Entra ID
  • Windows Server Administration
  • MCSE or MCSA Certification
Hard Skills
  • Active Directory Domain Services
  • PowerShell Scripting
  • Azure Virtual Machines
  • Role‑Based Access Control (RBAC)
  • Attributes Based Access Control (ABAC)
  • Cloud Migration
  • Digital Identity Management
  • Identity Governance
  • Infrastructure as Code
  • Disaster Recovery Planning
Soft Skills
  • Strong Communication Skills
  • Technical Leadership
Certifications & Qualifications
  • MCSE Certification
  • MCSA Certification
  • AZ-104
  • AZ-305
  • SC-300
  • Microsoft Certified: Windows Server Hybrid Administrator Associate
Industry Keywords
  • Zero Trust Principles
  • Compliance Standards
  • Cloud-First Architectures
  • Identity Governance
  • Data Security Architecture
Tools & Technologies
  • Azure Policy
  • Power BI
  • Bicep
  • Terraform
  • SAML
  • OAuth
  • OpenID Connect
  • Kerberos
  • NTLM
  • Defender for Identity
  • Sentinel
Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Identity Engineer – Tier 2
Identity Engineer – Tier 2

Jobtailor • Deutschland

Hybrid
EUR 55.000 - 75.000
Senior Cyber Security, Microsoft Ecosystem Engineer
Senior Cyber Security, Microsoft Ecosystem Engineer

Jobtailor • Deutschland

Remote
EUR 90.000 - 120.000
Migration Engineer
Migration Engineer

Jobtailor • Deutschland

Remote
EUR 90.000 - 120.000
AI/M365 Security and Identity Governance Engineer
AI/M365 Security and Identity Governance Engineer

Jobtailor • Deutschland

Remote
EUR 90.000 - 130.000
Azure Engineer
Azure Engineer

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Cloud Engineer II
Cloud Engineer II

Jobtailor • Deutschland

Remote
EUR 85.000 - 110.000
Identity and Access Management Engineer I
Identity and Access Management Engineer I

Jobtailor • Deutschland

Remote
EUR 70.000 - 100.000
Security Architect
Security Architect

Jobtailor • Garching bei München

Vor Ort
EUR 90.000 - 120.000
Manager, Platform – Identity Administration
Manager, Platform – Identity Administration

Jobtailor • Deutschland

Vor Ort
EUR 90.000 - 140.000
Migration Team Lead
Migration Team Lead

Jobtailor • Deutschland

Remote
EUR 120.000 - 190.000